Search CVE reports


Toggle filters

11 – 20 of 37349 results

Status is adjusted based on your filters.


CVE-2026-22206

Medium priority
Needs evaluation

SPIP versions prior to 4.4.10 contain a SQL injection vulnerability that allows authenticated low-privilege users to execute arbitrary SQL queries by manipulating union-based injection techniques. Attackers can exploit this SQL...

1 affected package

spip

Package 20.04 LTS
spip Needs evaluation
Show less packages

CVE-2026-22205

Medium priority
Needs evaluation

SPIP versions prior to 4.4.10 contain an authentication bypass vulnerability caused by PHP type juggling that allows unauthenticated attackers to access protected information. Attackers can exploit loose type comparisons in...

1 affected package

spip

Package 20.04 LTS
spip Needs evaluation
Show less packages

CVE-2025-40932

Medium priority
Needs evaluation

Apache::SessionX versions through 2.01 for Perl create insecure session id. Apache::SessionX generates session ids insecurely. The default session id generator in Apache::SessionX::Generate::MD5 returns a MD5 hash seeded with the...

1 affected package

libapache-sessionx-perl

Package 20.04 LTS
libapache-sessionx-perl Needs evaluation
Show less packages

CVE-2021-4456

Medium priority
Needs evaluation

Net::CIDR versions before 0.24 for Perl mishandle leading zeros in IP CIDR addresses, which may have unspecified impact. The functions `addr2cidr` and `cidrlookup` may return leading zeros in a CIDR string, which may in turn be...

1 affected package

libnet-cidr-perl

Package 20.04 LTS
libnet-cidr-perl Needs evaluation
Show less packages

CVE-2026-3203

Medium priority
Needs evaluation

RF4CE Profile protocol dissector crash in Wireshark 4.6.0 to 4.6.3 and 4.4.0 to 4.4.13 allows denial of service

1 affected package

wireshark

Package 20.04 LTS
wireshark Needs evaluation
Show less packages

CVE-2026-3202

Medium priority
Needs evaluation

NTS-KE protocol dissector crash in Wireshark 4.6.0 to 4.6.3 allows denial of service

1 affected package

wireshark

Package 20.04 LTS
wireshark Needs evaluation
Show less packages

CVE-2026-3201

Medium priority
Needs evaluation

USB HID protocol dissector memory exhaustion in Wireshark 4.6.0 to 4.6.3 and 4.4.0 to 4.4.13 allows denial of service

1 affected package

wireshark

Package 20.04 LTS
wireshark Needs evaluation
Show less packages

CVE-2026-3184

Medium priority
Needs evaluation

[Access control bypass due to improper hostname canonicalization]

1 affected package

util-linux

Package 20.04 LTS
util-linux Needs evaluation
Show less packages

CVE-2026-27951

Medium priority
Needs evaluation

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, the function `Stream_EnsureCapacity` can create an endless blocking loop. This may affect all client and server implementations...

3 affected packages

freerdp, freerdp2, freerdp3

Package 20.04 LTS
freerdp
freerdp2 Needs evaluation
freerdp3
Show less packages

CVE-2026-27950

Medium priority
Needs evaluation

FreeRDP is a free implementation of the Remote Desktop Protocol. Prior to version 3.23.0, the fix for the heap-use-after-free described in CVE-2026-24680 is incomplete. While the vulnerable execution flow referenced in the...

3 affected packages

freerdp, freerdp2, freerdp3

Package 20.04 LTS
freerdp
freerdp2 Needs evaluation
freerdp3
Show less packages